Vulnerabilities > Sven Moderow

DATE CVE VULNERABILITY TITLE RISK
2007-01-05 CVE-2007-0094 Information Disclosure vulnerability in Sven Moderow Sven Moderow Guestbook 0.3A
Sven Moderow GuestBook 0.3a stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for (1) gbook97.mdb or (2) gbook.mdb in ~db/.
network
low complexity
sven-moderow
7.5